OpenAPI React Query Codegen npm Compromise
Ten malicious @7nohe/openapi-react-query-codegen versions carried valid npm provenance because an issue-comment workflow checked only for the text “npm publish,” then built a pull-request fork with id-token: write. The package receives roughly 150,000 weekly downloads. Its install-time payload targeted registry, cloud, CI, GitHub, and AI-tool credentials, added persistence, and could propagate into other packages and hosts. Teams must treat an installed affected version as a host compromise, not a dependency cleanup.